
Security News
minimatch Patches 3 High-Severity ReDoS Vulnerabilities
minimatch patched three high-severity ReDoS vulnerabilities that can stall the Node.js event loop, and Socket has released free certified patches.
@mintlify/validation
Advanced tools
@mintlify/validation is a small package to validate docs.json files.
npm install @mintlify/validation
import mintValidation from "@mintlify/validation"
const configObject = { name: "Site Name", navigation: [] }
mintValidation.validateMintConfig(configObject)
mintValidation.validateDocsConfig(configObject)
This package assumes you have already loaded a config object into a JavaScript object.
The package returns an object with the properties status, warnings, and errors.
status can be one of: "success", "error".
warnings is a string array with warnings the user should know but are not expected to break the site.
errors is a string array of errors that will likely break the site.
When status === "error" you should stop trying to build mint, your docs.json file is invalid and the site will crash when building.
{
"status": "error",
"warnings": ["Navigation is an empty array, no pages will be shown"],
"errors": ["Mintlify does not support .ico favicons, use .svg or .png instead."]
}
Additional documentation on docs.json is available on Mintlify's website.
Join our Discord community if you have questions or just want to chat:
Built with 💚 by the Mintlify community.
FAQs
Validates mint.json files
The npm package @mintlify/validation receives a total of 143,946 weekly downloads. As such, @mintlify/validation popularity was classified as popular.
We found that @mintlify/validation demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 10 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
minimatch patched three high-severity ReDoS vulnerabilities that can stall the Node.js event loop, and Socket has released free certified patches.

Research
/Security News
Socket uncovered 26 malicious npm packages tied to North Korea's Contagious Interview campaign, retrieving a live 9-module infostealer and RAT from the adversary's C2.

Research
An impersonated golang.org/x/crypto clone exfiltrates passwords, executes a remote shell stager, and delivers a Rekoobe backdoor on Linux.